Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Essilor of America

Group: Worldleaks

Discovered by ransomware.live: 2025-10-24

Estimated attack date: 2025-10-24

Country: US

Description:

[AI generated] Essilor of America is a subsidiary of the renowned French company, Essilor International. Based in the US, it is a leading manufacturer and wholesale distributor of optical lenses. It specializes in creating lenses for eyeglasses and sunglasses, holding a strong reputation for its progressive and high-index lenses. It focuses on promoting good vision health and developing innovative solutions for vision correction.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 6

Compromised Users: 57

Third Party Employee Credentials: 23


External Attack Surface: 33


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • registrar-abuse systonic.fr
  • info domain-contact.org
MX Records
  • essilor-com.mail.protection.outlook.com.
TXT Records
  • _83tjo02zjwl4ohbqn4j7oalyeg85419
  • _globalsign-domain-verification=KUNcf57FXz_TNP3bhRIxPfWi4b8BvfQMALcVD5A1Jq
  • _i3f3jvt3h4psjxayeqt0rqjz30r5gbx
  • docusign=7b9abe00-dbd7-47aa-870f-e4ce5b328329
  • _globalsign-domain-verification=ZcvPQoCe0998PSUU4YRlr3w4Lzbu644VoUYZr7dpvr
  • wk49kcnm42kv40f6q51qcr5l1h5lj7y1
  • google-site-verification=bIUrr9Z6ClMNwyUBt6KfIb6i4Pv1C_kYcYDqB2H0VRo
  • google-site-verification=fa9A3-_-Tj5QATK7OuBrYX63FrN9buwXdIiVXxn7MQI
  • infoblox-domain-mastery=20ea5fc9ab2fedb75df4ee048a380a49e51472dd3edc9224547b1fa67cca688a5e
  • google-site-verification=u2YrUm8AIXG3cj-azwy_BJwgXqLzqu6cAEZjXS_hKS8
  • v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com ~all
  • 7qg0vvf1z9hytsyqp1qj4zw017mg2y43
  • brevo-code:a0828767726459603e152a05ab93dd2d
  • _globalsign-domain-verification=2Mp1AFq0iAKy9SSGPx90_beRXJnZUA1SlMUR9eA6LZ
  • MS=ms16498070
  • google-site-verification=JJ4tTKRhvTsWVhXGKo5dyp6x8ZP8ZTfPpOulaMrbB0w
  • amazonses:JVT2h8IyUv5jjgdsHZpvI/bvpKa4OI2ZbDIb/wLC9kY=
  • _globalsign-domain-verification=KlFc1X-_yt98f_7xydm-gythLJ_J-WFDnev03EWu4I
  • _5b10j22tadx7rfpbq1t8ccvnfvtiktj
  • _globalsign-domain-verification=BjL6V7JnCum24EgQBsd3zVgA3U5fHEhYmQhlvuChuU
Cloud / SaaS Services Detected
Amazon SES/WorkMail Microsoft 365 DocuSign Proofpoint

Leak Screenshot:

Leak Screenshot